Publication | Closed Access
Digital evidence collection process in integrity and memory information gathering
19
Citations
2
References
2006
Year
Unknown Venue
Forensic PsychologyEngineeringInformation SecurityDigital InvestigationVerificationInformation ForensicsMdc ValueFormal VerificationDigital EvidenceData ScienceForensic MedicineManagementData IntegrationData ManagementPublic Key InfrastructureData PrivacyComputer ScienceInformation ManagementComputer ForensicsMdc Public SystemData SecurityCryptographyDatabase ForensicsMemory Information GatheringDigital ForensicsDigital Evidence Extraction
In this paper, we inspect general digital evidence collection process which is according to RFC3227 document, and establish specific steps for guaranteeing integrity of digital evidence and memory information collection. EnCase/spl trade/ which was used globally has a weakness that MDC value of digital evidence can be modified, hence we propose MDC public system, MAC system and public authentication system with PKI as a countermeasure. And we explain detail of each system. Besides, we include memory dump process to existing digital evidence collection process, and examine privacy information through dumping real user's memory and collecting pagefile which is part of virtual memory system.
| Year | Citations | |
|---|---|---|
Page 1
Page 1